Re: Message takeover attacks against S/MIME
Russ Housley <[email protected]> Tue, 8 Mar 2016 01:58:34 -0500
| Newsgroups | gmane.ietf.smime |
|---|---|
| Message-ID | <[email protected]> |
I am hearing interest in these topics (a combination of things on this list and side conversations). (1) Specify the way to use authenticated encryption in S/MIME. Note that it is already done for CMS. (2) Specify conventions for AES-CCM, AES-GCM, and ChaCha20 with Poly1305 authenticated encryption algorithms. (3) Specify conventions for using Curve25519 and Curve448 for key agreement. (4) Specify conventions for using the CFRG chosen curves for elliptic curve digital signature. (5) Specify a way to use PGP public keys in addition to PKIX certificates. Anything else? Is this enough to re-charter the S/MIME WG? Russ _______________________________________________ smime mailing list [email protected] https://www.ietf.org/mailman/listinfo/smime